Senior Security Engineer - Node.js Proactive Defense (remote-only)

1 hour, 6 minutes ago
Full-time
Senior
Software Development
CloudLinux

CloudLinux

CloudLinux is a leading provider of the CloudLinux OS, a platform for Linux web hosting that offers next-level performance and security. With a focus on optimizing web hosting environments, CloudLinux helps service providers improve density, stability,...

IT Services
51-250
Founded 2009

Description

  • Own the Node.js Proactive Defense initiative as a new runtime security layer for Imunify360.
  • Design and ship a Node.js runtime agent that hooks into the V8/Node lifecycle to trace and block malicious behavior patterns.
  • Define the detection model, including default-blocking versus signal-only behaviors, and manage rule authoring, distribution, and versioning.
  • Integrate Node.js detections, blocks, and incidents into the existing Imunify telemetry pipeline, backend event store, and admin UI.
  • Ensure the agent is production-safe for shared hosting with low overhead, tenant isolation, and compatibility with CageFS and LVE.
  • Build the pipeline that turns CVE write-ups and threat-intel feeds into shipped detections.
  • Generate, test, and roll out rule candidates from advisories and exploit primitives.
  • Own the feedback loop from production blocks, false positives, and evasions into future rule improvements.
  • Design the solution to operate as a first-class layer of Imunify360 rather than a standalone tool.

Requirements

  • Security engineer mindset focused on attack surfaces, exploit primitives, and defense-in-depth.
  • Ability to read a CVE write-up and reconstruct the exploit primitive.
  • Knowledge of runtime exploitation patterns such as prototype pollution, deserialization, command injection, SSRF, path traversal, and supply-chain poisoning.
  • Systems-level development experience with Linux daemons, systemd, privileged processes, IPC, namespaces/cgroups, file-descriptor hygiene, and signal hygiene.
  • Low-level instrumentation experience with technologies such as LD_PRELOAD, eBPF, ptrace, JVM agents, Python sys.settrace, language-runtime preload, or kernel modules.
  • Understanding of why common exploit primitives exist, not just familiarity with their names.
  • Shared-hosting or multi-tenant Linux experience, including LVE, CageFS, control panels, or similar tenant-isolation work (nice to have).
  • Comfort using CVEs and threat-intel feeds as primary product input (nice to have).

Benefits

  • Fully remote work with flexible working hours worldwide.
  • Paid 24 days of vacation per year plus 10 national holidays.
  • Unlimited sick leave.
  • Private medical insurance coverage.
  • Co-working and gym/sports reimbursement.
  • Budget for education and professional development.
  • Opportunity to earn a reward for the most innovative patentable idea.
  • Interesting and challenging projects.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Security Automation Engineer

ProArch 251-1K Internet Software & Services

ProArch is hiring a remote Security/SOAR Automation Engineer in India to design and scale cybersecurity automation for a global MSSP SOC environment supporting clients across modern security ecosystems.

Cybersecurity DevSecOps JSON PowerShell Python REST API SIEM SOC Splunk
24 minutes ago

Senior Detection & Response Engineer

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is seeking a Senior Detection and Response Engineer to strengthen the security of its defense technology products and supporting infrastructure through advanced detection, response, and security architecture work.

AWS AWS CDK Azure CI/CD CloudFormation Docker GitHub Go Kubernetes Network Security Python Rust SQL Terraform
1 hour, 50 minutes ago

Expert Solution Architect

Ensono 1K-5K IT Services

Ensono is seeking an experienced Solution Architect to design and modernize secure, scalable AWS and Nutanix-on-AWS hybrid environments that support enterprise cloud migrations and operational resilience.

Ansible AWS CI/CD CloudFormation CrowdStrike Linux Splunk Terraform
2 hours, 55 minutes ago

Sr Technical Data Security Architect- Remote (Anywhere in the U.S.)

GuidePoint Security 251-1K Internet Software & Services

GuidePoint Security is seeking a Senior Technical Data Security Architect to design and govern enterprise data security across its Microsoft and Databricks data platforms, ensuring protection, privacy, access control, and compliance for critical data workloads.

Apache Spark AWS Azure Databricks Encryption GCP GitHub Actions HIPAA MLflow OAuth Power BI PowerShell Python Snowflake SQL Terraform
3 hours, 56 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers